JavaScript escaped the browser. JS-Tap v3 followed it. In our new #blog, Principal Security Consultant @hoodoer introduces three new beacons targeting the Electron apps, browser extensions, and Node runtimes running on corporate workstations. Read it now! https://t.co/grPGL6iBKA
Trend Micro Deep Security Agent Research: Forcing bmhook/tmhook Reloads to Open a Protection Bypass Window
Full research: https://t.co/bZFOyMptG5
#rootkit#linux#edr#poc
Over the next few months, we'll be gradually publishing some of our internal security research.
Starting with a bug chain that turns Nginx-Rift + Nginx-PoolSlip into full RCE.
More to come.
#Nginx#1day#RCE
https://t.co/tqQMFAoX9P
Alexandre Borges has published over 700 pages of free security, malware and vulnerability research.
A complete Malware Analysis Series covering Windows, macOS, iOS, Linux and shellcode. An Exploiting Reversing Series covering Windows kernel exploitation, Hyper-V, Chrome, and a three-part deep dive on CVE-2024-30085.
No paywall. No course. Just research. Free as in beer.
https://t.co/x516DQRcB8
Author: @ale_sp_brazil
#ReverseEngineering #MalwareAnalysis #InfoSec
Advanced EDR Evasion via AI Telemetry Spoofing & WASM Sandboxing. Project Onyx is a PoC Red Team pipeline designed to demonstrate advanced evasion techniques against modern EDR systems https://t.co/j26UbHlFkd
From a tiny race condition in Linux Bluetooth SCO to a full kernel LPE.
The Secunnix team dissected the vulnerable path, engineered a heap spray + SMEP bypass, and turned a subtle UAF into reliable uid=0 execution all demonstrated on real QEMU/KVM runs.
https://t.co/ltxeVRALKY
Well this one being dismissed as not a security vulnerability is more surprising than the last time as it's a kernel data abort, but so be it. Another iOS 26.5 panic, disclosed here. Enjoy https://t.co/JPWHPyBIiw
Windows rootkit for Intel x64 with 25+ features, demonstrating rootkit techniques compatible with all Windows 10 and Windows 11 versions. https://t.co/Df1mE2lkJZ
DPI bypass via fake TLS ClientHello injection with wrong TCP sequence number. Rust port of @patterniha's SNI-Spoofing. Linux, macOS, Windows. Works with v2ray/xray VLESS configs behind Cloudflare. https://t.co/ahX9s7fXko
EXCLUSIVE: How the track foreigners in China - We got rare access to demo system developed by the Ministry of Public Security in China for the prefecture of Zhangjiakou, to track and surveil foreigners visiting or being residents ( actually it applies to most nationals as well, but in this case it seems to be aimed at foreigners ). It is officially known as "Dynamic control platform for overseas personnel". 1/12